CVE-2025-58720

7.8

Microsoft · Windows

A risky implementation of a cryptographic primitive within Windows Cryptographic Services permits an authorized local attacker to disclose sensitive information.

Executive summary

A cryptographic implementation flaw in Windows Cryptographic Services, identified as CVE-2025-58720, exposes systems to potential local information disclosure and unauthorized access.

Vulnerability

The vulnerability involves the use of a cryptographic primitive with a risky implementation (CWE-1240) in Windows Cryptographic Services. An attacker with low-level local privileges can exploit this flaw to bypass security controls and disclose sensitive information.

Business impact

The vulnerability carries a CVSS score of 7.8, which classifies it as a High severity risk. Successful exploitation could lead to the unauthorized disclosure of sensitive data, potential privilege escalation, or full system compromise by a local user, posing significant risks to organizational data confidentiality and system integrity.

Remediation

Immediate Action: Apply the relevant security updates provided by Microsoft in the official update guide at https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-58720.

Proactive Monitoring: Review local access and authentication logs for anomalous patterns or unauthorized attempts to interact with cryptographic services.

Compensating Controls: Ensure that the principle of least privilege is strictly enforced, limiting the number of users with local access to sensitive server or workstation environments.

Exploitation status

Public Exploit Available: No

Analyst recommendation

Given the High severity rating, organizations should prioritize the deployment of the vendor-supplied security patches to all affected Windows endpoints. Regular vulnerability scanning and adherence to patch cycles will mitigate the risk of local exploitation and ensure that cryptographic services remain protected against this implementation flaw.

More Microsoft CVEs

Sources